Invention Grant
- Patent Title: Guard system for automatic network flow controls for internet of things (IoT) devices
-
Application No.: US15934931Application Date: 2018-03-23
-
Publication No.: US11140180B2Publication Date: 2021-10-05
- Inventor: Charles K. Davis, III , Chris Dotson , Steven Lingafelt
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agent Jeffrey S. LaBaw; David H. Judson
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
A method, apparatus and computer program product for use in identifying and blocking operation of compromised or potentially compromised IoT device(s) on a network, such as a local network behind a router or firewall. To this end, the technique provides for automated and seamless on-boarding of a “guard” system for IoT devices, preferably as those devices join (or re-join) into the network via a Dynamic Host Configuration Protocol message exchange. In operation, and in response to receipt of a DHCP discover message that includes a network location, a DHCP server uses the network location to locate and retrieve a set of flow attributes for the device. Those attributes are then associated with the IP address to be assigned to the IoT device in a network control device. The network control device then selectively identifies and/or blocks operation of the IoT device when the IoT device is compromised or potentially compromised, thereby protecting the network (or network resources) from damage or misuse.
Public/Granted literature
- US20190297102A1 Guard system for automatic network flow controls for Internet of Things (IoT) devices Public/Granted day:2019-09-26
Information query